better-auth

Pass

Audited by Gen Agent Trust Hub on Sep 18, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: Fetches dependencies and references documentation from official and well-known sources, including better-auth.com and GitHub repositories for better-auth and related tools like Drizzle ORM.
  • [COMMAND_EXECUTION]: Provides automated setup scripts and CLI instructions for managing database migrations and project initialization via standard tools like npm and wrangler.
  • [CREDENTIALS_SAFE]: Encourages the use of environment variables and platform-native secret management (e.g., Cloudflare Secrets) rather than hardcoding sensitive information.
  • [INDIRECT_PROMPT_INJECTION]: The skill facilitates the handling of user-supplied authentication data. It addresses potential vulnerabilities through the use of standardized schemas and secure-by-default library configurations. Findings in this category are assessed as low risk due to the implementation of validation layers like @standard-schema/spec.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 18, 2026, 08:44 AM
Security Audit — agent-trust-hub — better-auth